IBM Aspera buffer overflow
CVE-2023-27285
7.8HIGH
Summary
IBM Aspera Connect and Aspera Cargo versions 4.2.5 are affected by a buffer overflow vulnerability due to improper bounds checking. This weakness allows an attacker to overflow a buffer, potentially enabling the execution of arbitrary code on the affected system. Timely patching and adherence to security best practices are essential for mitigating the risks associated with this vulnerability.
Affected Version(s)
Aspera Cargo 4.2.5
Aspera Connect 4.2.5
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved